facebookform[.]vercel[.]app
“Testing Forms”
已存储的检测结果
内容伪装警报
- 伪装类型
content_split- 伪装评分
- 1/6
This domain facebookform.vercel.app is assessed as a high-risk brand impersonation phishing endpoint targeting Facebook users. Analysis indicates it is designed to mimic Facebook-related form workflows, likely to trick users into submitting login credentials or sensitive account information. The observed page title 'Testing Forms' suggests a decoy interface commonly used in phishing kits to simulate legitimate form testing environments while masking credential capture functionality. The domain is currently active and continues to present exposure risk.
Evidence supports malicious classification across multiple telemetry sources. VirusTotal reports 16/95 security vendors flagging the domain as malicious. The domain is registered through Vercel Inc. and resolves to IP 64.29.17.131 hosted in the United States under Vercel infrastructure. It appears on 1 security blocklist and is protected by SSL issued by Google Trust Services / WR1. The domain specifically impersonates Facebook, increasing the likelihood of user trust exploitation and credential harvesting attempts.
The domain remains active, indicating ongoing risk of user exposure. Users who interacted with this site should assume potential credential compromise, especially if Facebook credentials were entered. Immediate mitigation includes password reset, session invalidation across devices, and enabling multi-factor authentication. Any reused credentials should be changed across all services. Security teams should monitor for unauthorized login attempts and block the domain at network and DNS layers. Endpoint checks should be performed to ensure no token theft or browser-based persistence mechanisms are present.
网络安全情报
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| OpenDNS | facebookform.vercel.app |
phishing | Phishing Block |
| Cloudflare DNS | facebookform.vercel.app |
malicious | Sinkholed |
| DNS4EU | facebookform.vercel.app |
malicious | Sinkholed |
威胁响应 Pipeline
阻止列表覆盖
10 个来源 · 于 2026年8月10日 同步
检测时间线
按时间顺序显示已存储的观测记录。
-
VirusTotal
VirusTotal:0 → 16
-
已存储的观测记录
已存储的观测记录:alive → dead
取证情报
VirusTotal 分析
您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。
检查任意域名
使用存储的阻止列表、WHOIS、DNS 和公共扫描证据进行威胁分析
立即扫描举报网络钓鱼
将可疑域名提交至我们的威胁数据库——保护社区
报告实时威胁动态
最近的网络钓鱼报告和观察到的可用性变化
监控